You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@directory.apache.org by "Chris Pike (JIRA)" <ji...@apache.org> on 2016/10/12 12:49:20 UTC

[jira] [Created] (FC-195) ARBAC Role Grouping

Chris Pike created FC-195:
-----------------------------

             Summary: ARBAC Role Grouping
                 Key: FC-195
                 URL: https://issues.apache.org/jira/browse/FC-195
             Project: FORTRESS
          Issue Type: Improvement
            Reporter: Chris Pike
            Assignee: Chris Pike


User Story: As a fortress super administrator, I want to delegate Role Management (Creation and Permission Assignment) to application owners

Current Steps:
 1. Create an ARBAC Role (AR1) that has jurisdiction over Perm OU (POU1) and Role Range (RR1)
 2. Assign User (U1) into AR1
 3. U1 creates new Role (R1)
 4. U1 adds Permission (P1) into R1 but is denied since R1 doesn't belong to RR1

Steps After ARBAC Role Group
 1. Create an ARBAC Role (AR1) that has jurisdiction over Perm OU (POU1) and Role Group (RG1)
 2. Assign User (U1) into AR1
 3. U1 creates new Role (R1) with Group of RG1
 4. U1 adds Permission (P1) into R1



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)